CERT-In Vulnerability Note
CIVN-2023-0231
Multiple Vulnerabilities in Google Chrome for Desktop
Original Issue Date:August 09, 2023
Severity Rating: HIGH
Software Affected
- Google Chrome versions prior to 115.0.5790.170 for Linux and Mac
- Google Chrome versions prior to 115.0.5790.170/.171 for Windows
Overview
Multiple vulnerabilities have been reported in Google Chrome which could allow an attacker to execute arbitrary code, bypass security restrictions or cause a denial-of-service condition on the targeted system.
Description
Multiple vulnerabilities exist in Google Chrome due to Type Confusion in V8; Heap buffer overflow in Visuals; Out of bounds read and write in WebGL; Out of bounds memory access in ANGLE; Use after free in Blink Task Scheduling, Cast and WebRTC; Insufficient data validation in Extensions and Inappropriate implementation in Extensions. An attacker could exploit these vulnerabilities by persuading a victim to visit a specially crafted Web site.
Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary code, bypass security restrictions or cause a denial-of-service condition on the targeted system.
Solution
Apply appropriate updates as mentioned by the vendor:
https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html
Vendor Information
Google Chrome
https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html
References
Google Chrome
https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html
CVE Name
CVE-2023-4068
CVE-2023-4069
CVE-2023-4070
CVE-2023-4071
CVE-2023-4072
CVE-2023-4073
CVE-2023-4074
CVE-2023-4075
CVE-2023-4076
CVE-2023-4077
CVE-2023-4078
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|